On Wed Mar 06, 2002 at 11:52:52PM -0800, David Guntner wrote:

> > I've forwarded it to two folks I think might be able to help.  If I
> > hear anything back from them, I'll forward it to the list.
> 
> Thanks, it's appreciated.

Actually, I heard back from them and I know what your problem is...
we'll get this going yet!  =)

> > Well, postfix probably ignores all of the sasl config commands if it's
> > not enabled.  I suspect if you had smtpd_sasl_auth_enable = no it
> > would likewise work without errors.  There's something with SASL
> > itself, or a misconfiguration on the SASL components.
> 
> You made me curious, so I tried it.  Setting smtpd_sasl_auth_enable to "no" 
> apparently doesn't try to load the components, because I could telnet in 
> from a remote site just fine and it didn't die.  As expected, a ehlo did 
> not show auth login as a command in response. :-)

Yup.  I was pretty sure of that...  and after reading this, I know
what your problem is which my SASL "buddies" confirmed.

Are you dying of suspense yet?  hehehe...

> > One last thing.  Can you tell me what the permissions of
> > /var/lib/sasl/sasl.db are?  If they aren't mode 644, can you chmod it
> > and restart saslauthd and postfix and see if that helps?
> 
> $ ls -la /var/lib/sasl
> total 22
> drwxr-xr-x    2 root     root          152 Mar  5 03:23 ./
> drwxr-xr-x   26 root     root          696 Mar  1 00:11 ../
> srwxrwxrwx    1 root     root            0 Mar  5 03:23 mux=
> -rw-------    1 root     root            6 Mar  5 03:23 mux.pid
> -rw-r--r--    1 root     root        12288 Feb 26 16:19 sasl.db
> -rw-r--r--    1 root     root           20 Mar  1 10:20 smtpd.conf

perms are good

> $ cat /var/lib/sasl/smtpd.conf
> pwcheck_method: pam
> $
> 
> (I figured you might want to know what's in the smtpd.conf file. :)

This is very bad.  What you are doing here is telling SASL to use
pam... not good.  Two things here:

1) smtpd.conf should contain "pwcheck_method:sasldb"
2) it belongs in /usr/lib/sasl not /var/lib/sasl

> > > Well, thanks for trying; I do appreciate it.  If you happen to think of 
> > > anything else, please feel free to pass it on to me. :-)
> > 
> > Check the permissions... that's about all I can think of right now...
> 
> Thanks again.

If this doesn't fix your problem, I will be really surprised...

/me thinks I need to do a postfix+SASL tutorial on MandrakeSecure...

-- 
MandrakeSoft Security; http://www.mandrakesecure.net/
"lynx -source http://www.freezer-burn.org/bios/vdanen.gpg | gpg --import"
1024D/FE6F2AFD   88D8 0D23 8D4B 3407 5BD7  66F9 2043 D0E5 FE6F 2AFD

Current Linux kernel 2.4.8-34.1mdk uptime: 44 days 0 hours 0 minutes.

Attachment: msg50627/pgp00000.pgp
Description: PGP signature

Reply via email to